Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [Full-disclosure] hPRoTeCT Labs Releases vulnfind |
|---|---|
| Date: | Wed, 27 Apr 2005 11:57:15 -0700 |
hPRoTeCT Labs is pleased to announce the release of vulnfind, an
automated universal vulnerability discovery and exploitation
engine. vulnfind permits the universal and automated discovery of
vulnerabilities across all Windows XP platforms via the
instrumentation of shared library code responsible for virtually
all vulnerabilities. An advanced 'detours' hook library instruments
the shared library code responsible for 'strcpy', a major cause of
vulnerabilities, and notifies when the saved frame pointer and
return address ('ebp' and 'eip') will be compromised due to excess
string length. In addition, vulnfind permits vulnerability
discovery and penetration tests alike via run-time replacement of
the compromised return address ('eip') with an address of memory-
resident shellcode resident in the memory of the process.
vulnfind is released as open 'c' source and it will be ported to
'c++' in the coming weeks. vulnfind, along with over 250 other c,
cpp, cxx, and h files written by hPRoTeCT staff, is available via
the hPRoTeCT Labs home page, in addition to over 250 other
projects.
The availability of additional projects will be announced to all
mailing lists upon becoming available.
Wiley Miller
Product Manager, hPRoTeCT Labs
Concerned about your privacy? Follow this link to get
secure FREE email: http://www.hushmail.com/?l=2
Free, ultra-private instant messaging with Hush Messenger
http://www.hushmail.com/services-messenger?l=434
Promote security and make money with the Hushmail Affiliate Program:
http://www.hushmail.com/about-affiliate?l=427
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [Full-disclosure] How to Report a Security Vulnerability toMicrosoft, Kevin |
|---|---|
| Next by Date: | [Full-disclosure] Buffer overflow in KMiNT21 Software Golden FTP Server Pro v2.52 (10.04.2005), Reed Arvin |
| Previous by Thread: | [Full-disclosure] iDEFENSE Labs Releases dltrace, iDEFENSE Labs |
| Next by Thread: | Re: [Full-disclosure] hPRoTeCT Labs Releases vulnfind, blad3 |
| Indexes: | [Date] [Thread] [Top] [All Lists] |